Hacking Paypal
SQL Injection for DoS
Minggu, 22 Mei 2011
Another
application threat related to SQL injection is Denial of Service (DoS),
which, in its most extreme form, can bring the Web application to a
halt by shutting down its backend database. It takes place when an
attacker appends the SHUTDOWN command to a SQL statement, or when the
attacker creates complex queries over self-joins of large database
tables with the intention of sending the database into time consuming
loops over lots of data. This ends up consuming pre...
SQL Injection for Web site defacement
Minggu, 22 Mei 2011
Web site defacement traditionally occurred when a hacker obtained administrative privileges to a Web site and then altered the content of the Web site with potentially offensive or erroneous graphics and text. While Web site owners have bolstered the security of Web configuration tools, malicious users have discovered a new technique to deface Web sites: SQL injection.
In 2007, there were several high profile incidents in which SQL injection was used for Web site defacement. ...
How to set up an e-commerce site using PayPal to process
Jum`at, 20 Mei 2011
Selling stuff online has become the new "side business" of many
Internet users, whether it's used clothes, vintage computer items,
custom-made gadgets, or homemade cookies. There are numerous venues to
do this without having to expend any brainpower (eBay still being the
go-to source) but there are downsides to using those services—namely,
there are so many people using them to sell items of questionable quality that it's easy to get dismissed as "yet another eBay ...
Mematikan Mesin ATM Modus Baru Pembobolan ATM
Rabu, 18 Mei 2011
REPUBLIKA.CO.ID, JAKARTA - Polda Metro Jaya menangkap dua pelaku pembobolan Anjungan Tunai Mandiri (ATM) dengan modus baru. Pelaku melakukan pembobolan total sekitar Rp 206 juta.
Kepala Satuan Reserse Mobil Direktorat Kriminal Umum (Ditkrimum) Kompol Herry Heryawan mengatakan, polisi telah menangkap dua tersangka berinisial AS (27) dan AB (26). Polisi menangkap pelaku pada Minggu (15/5). "Kasusnya dalam pengembangan," katanya di Mapolda Metro Jaya, Selasa (17/5).
 ...
Somebody is using Firesheep on this network
Jum`at, 13 Mei 2011
At the Toorcon 12 security conference, Eric Butler released a Firefox plugin named Firesheep, which drew significant media attention. Firesheep allowed any user to seamlessly hijack the web session of another user on the same local network. Although such attacks are not new, the ease of use presented by Firesheep brought session hijacking to the masses.
BlackSheep, also a Firefox plugin is designed to combat Firesheep. BlackSheep does this by dropping ‘fake' session ID ...